Description: |
Company Overview We are a Euro‑based startup offering affordable, remote‑delivered cybersecurity solutions to micro‑businesses (1–10 employees), ensuring GDPR and NIS2 compliance with clear, actionable deliverables.
Project Scope Penetration Testing: Identify vulnerabilities in web and network environments, focusing on OWASP Top 10 and custom attack vectors.
2FA/MFA Implementation: Configure and deploy multi‑factor authentication (TOTP, FIDO2) across email, cloud storage, and web platforms.
Firewall Setup & Management: Deploy open‑source (pfSense) or commercial firewalls to segment networks and enforce access controls.
Automated Backup & Recovery: Design cloud and local backup strategies (OneDrive, Backblaze) with offline redundancy and restoration tests.
Security Assessments & Risk Analysis: Conduct GDPR/NIS2 compliance reviews and document risk registers with prioritized remediation plans.
Documentation & Reporting: Deliver concise, client‑ready security policies, risk assessments, and remediation walkthroughs.
Responsibilities Execute targeted penetration tests and vulnerability scans using industry‑standard tools.
Implement robust MFA solutions and integrate with existing identity systems.
Configure and maintain firewalls, IDS/IPS, and network segmentation rules.
Build and automate backup pipelines, test restores, and ensure encryption in transit and at rest.
Perform detailed compliance assessments against GDPR, NIS2, and ISO 27001 frameworks.
Produce professional documentation, including executive summaries and technical appendices.
Required Skills & Qualifications Web & Network Penetration Testing: Demonstrated experience with OWASP Top 10, Metasploit, Burp Suite.
MFA Technologies: Hands‑on with TOTP, FIDO2, Duo Security or similar,
Firewall Expertise: pfSense, Cisco ASA, or equivalent platforms.
Backup Solutions: OneDrive, Google Drive, Backblaze, IDrive; offline & cloud redundancy.
Regulatory Knowledge: Practical understanding of GDPR and NIS2 compliance requirements.
Communication & Client Interaction: Ability to explain complex concepts to non‑technical stakeholders.
Organizational Skills: Meticulous documentation, project tracking, and reporting.
Remote Reliability: Proven track record on freelancing platforms with high ratings.
Preferred (Nice‑to‑Have) Certifications: OSCP, CISSP, CEH, or ISO 27001 Lead Implementer.
ISO 27001 Audits: Experience implementing or auditing ISO 27001 information security management systems.
How to Apply Please submit the following via Upwork or email:
Brief cover letter outlining your relevant experience
Sample deliverables (reports, configuration scripts, documentation)
Availability and time‑zone overlap
Links to Upwork profile, LinkedIn, GitHub, or relevant platforms
We look forward to partnering with you to secure Euro micro‑businesses affordably and effectively. |